HOME

TheInfoList



OR:

CrowdStrike Holdings, Inc. is an American
cybersecurity Computer security, cybersecurity (cyber security), or information technology security (IT security) is the protection of computer systems and networks from attack by malicious actors that may result in unauthorized information disclosure, th ...
technology company based in
Austin, Texas Austin is the capital city of the U.S. state of Texas, as well as the seat and largest city of Travis County, with portions extending into Hays and Williamson counties. Incorporated on December 27, 1839, it is the 11th-most-populous cit ...
. It provides cloud workload and
endpoint security Endpoint security or endpoint protection is an approach to the protection of computer networks that are remotely bridged to client devices. The connection of endpoint devices such as laptops, tablets, mobile phones, Internet-of-things devices, ...
, threat intelligence, and
cyberattack A cyberattack is any offensive maneuver that targets computer information systems, computer networks, infrastructures, or personal computer devices. An attacker is a person or process that attempts to access data, functions, or other restrict ...
response services. The company has been involved in investigations of several high-profile cyberattacks, including the 2014
Sony Pictures hack On November 24, 2014, a hacker group identifying itself as " Guardians of Peace" leaked a release of confidential data from the film studio Sony Pictures Entertainment (SPE). The data included personal information about Sony Pictures employees ...
, the 2015–16 cyber attacks on the Democratic National Committee (DNC), and the 2016 email leak involving the DNC.


History

CrowdStrike was co-founded by George Kurtz (CEO),
Dmitri Alperovitch Dmitri Mikhailovich Alperovitch (born 1980) is a Soviet-born American think-tank founder, investor, philanthropist, podcast host and former computer security industry executive. He is the chairman of Silverado Policy Accelerator, a geopolitics th ...
(former CTO), and Gregg Marston (CFO, retired) in 2011. In 2012, Shawn Henry, a former
Federal Bureau of Investigation The Federal Bureau of Investigation (FBI) is the domestic intelligence and security service of the United States and its principal federal law enforcement agency. Operating under the jurisdiction of the United States Department of Justice, t ...
(FBI) official, was hired to lead the subsidiary CrowdStrike Services, Inc., which focused on proactive and incident response services. In June 2013, the company launched its first product, CrowdStrike Falcon, which provided endpoint protection, threat intelligence and attribution. In May 2014, CrowdStrike's reports assisted the
United States Department of Justice The United States Department of Justice (DOJ), also known as the Justice Department, is a federal executive department of the United States government tasked with the enforcement of federal law and administration of justice in the United State ...
in charging five Chinese military hackers for economic cyber espionage against United States corporations. CrowdStrike also uncovered the activities of Energetic Bear, a group connected to the
Russian Federation Russia (, , ), or the Russian Federation, is a transcontinental country spanning Eastern Europe and Northern Asia. It is the largest country in the world, with its internationally recognised territory covering , and encompassing one-eight ...
that conducted intelligence operations against global targets, primarily in the energy sector. After the
Sony Pictures hack On November 24, 2014, a hacker group identifying itself as " Guardians of Peace" leaked a release of confidential data from the film studio Sony Pictures Entertainment (SPE). The data included personal information about Sony Pictures employees ...
, CrowdStrike uncovered evidence implicating the government of North Korea and demonstrated how the attack was carried out. In 2014, CrowdStrike played a major role in identifying members of Putter Panda, the state-sponsored Chinese group of hackers also known as PLA Unit 61486. In May 2015, the company released information about
VENOM Venom or zootoxin is a type of toxin produced by an animal that is actively delivered through a wound by means of a bite, sting, or similar action. The toxin is delivered through a specially evolved ''venom apparatus'', such as fangs or a st ...
, a critical flaw in an open-source
hypervisor A hypervisor (also known as a virtual machine monitor, VMM, or virtualizer) is a type of computer software, firmware or hardware that creates and runs virtual machines. A computer on which a hypervisor runs one or more virtual machines is called ...
called Quick Emulator (QEMU), that allowed attackers to access sensitive personal information. In October 2015, CrowdStrike announced that it had identified Chinese hackers attacking technology and pharmaceutical companies around the time that
US President The president of the United States (POTUS) is the head of state and head of government of the United States of America. The president directs the executive branch of the federal government and is the commander-in-chief of the United Sta ...
Barack Obama Barack Hussein Obama II ( ; born August 4, 1961) is an American politician who served as the 44th president of the United States from 2009 to 2017. A member of the Democratic Party, Obama was the first African-American president of the U ...
and China's
Paramount leader Paramount leader () is an informal term for the most important political figure in the People's Republic of China (PRC). The paramount leader typically controls the Chinese Communist Party (CCP) and the People's Liberation Army (PLA), often hol ...
Xi Jinping Xi Jinping ( ; ; ; born 15 June 1953) is a Chinese politician who has served as the general secretary of the Chinese Communist Party (CCP) and chairman of the Central Military Commission (CMC), and thus as the paramount leader of China, si ...
publicly agreed not to conduct economic espionage against each other. The alleged hacking would have been in violation of that agreement. CrowdStrike released research in 2017 showing that 66 percent of the attacks the company responded to that year were fileless or malware-free. The company also compiled data on the average time needed to detect an attack and the percentage of attacks detected by organizations. In February 2018, CrowdStrike reported that, in November and December 2017, it had observed a credential harvesting operation in the international sporting sector, with possible links to the cyberattack on the opening ceremonies of the Winter Olympics in Pyeongchang. That same month, CrowdStrike released research showing that 39 percent of all attacks observed by the company were malware-free intrusions. The company also named which industries attackers most frequently targeted. That March, the company released a version of Falcon for mobile devices and launched the CrowdStrike store. In January 2019, CrowdStrike published research reporting that Ryuk ransomware had accumulated more than $3.7 million in cryptocurrency payments since it first appeared in August. According to CrowdStrike's 2018 Global Threat Report, Russia has the fastest cybercriminals in the world. The company also claimed that, of 81 named state-sponsored actors it tracked in 2018, at least 28 conducted active operations throughout the year, with China being responsible for more than 25 percent of sophisticated attacks. In September 2020, CrowdStrike acquired zero trust and conditional access technology provider Preempt Security for $96 million. In March 2021, CrowdStrike acquired Danish
log management Log management (LM) comprises an approach to dealing with large volumes of computer-generated log messages (also known as audit records, audit trails, event-logs, etc.). Log management generally covers: * Log collection * Centralized log aggr ...
platform Humio for $400 million. Official CrowdStrike releases noted that the acquisition is to further their XDR capability. In November 2021, CrowdStrike acquired SecureCircle for $61 million, a SaaS-based cybersecurity service that extends Zero Trust security to data on, from and to the endpoint. In December 2021, CrowdStrike moved its headquarters location from
Sunnyvale, California Sunnyvale () is a city located in the Santa Clara Valley in northwest Santa Clara County in the U.S. state of California. Sunnyvale lies along the historic El Camino Real and Highway 101 and is bordered by portions of San Jose to the nort ...
to Austin, Texas.


Funding

In July 2015,
Google Google LLC () is an American multinational technology company focusing on search engine technology, online advertising, cloud computing, computer software, quantum computing, e-commerce, artificial intelligence, and consumer electronic ...
invested in the company's Series C funding round, which was followed by Series D and Series E, raising a total of $480 million as of May 2019. In 2017, the company reached a valuation of more than $1 billion with an estimated annual revenue of $100 million. In June 2018, the company said it was valued at more than $3 billion. Investors include
Telstra Telstra Group Limited is an Australian telecommunications company that builds and operates telecommunications networks and markets voice, mobile, internet access, pay television and other products and services. It is a member of the S&P/ASX 2 ...
, March Capital Partners,
Rackspace Rackspace Technology, Inc. is an American cloud computing company based in Windcrest, Texas, an inner suburb of San Antonio, Texas. The company also has offices in Blacksburg, Virginia, and Austin, Texas, as well as in Australia, Canada, United ...
,
Accel Partners Accel, formerly known as Accel Partners, is an American venture capital firm. Accel works with startups in seed, early and growth-stage investments. The company has offices in Palo Alto, California and San Francisco, California, with additional ...
and
Warburg Pincus Warburg Pincus LLC is a global private equity firm, headquartered in New York, with offices in the United States, Europe, Brazil, China, Southeast Asia and India. Warburg has been a private equity investor since 1966. The firm currently has over ...
. In June 2019, the company made an initial public offering (
IPO An initial public offering (IPO) or stock launch is a public offering in which shares of a company are sold to institutional investors and usually also to retail (individual) investors. An IPO is typically underwritten by one or more investment ...
) on the
NASDAQ The Nasdaq Stock Market () (National Association of Securities Dealers Automated Quotations Stock Market) is an American stock exchange based in New York City. It is the most active stock trading venue in the US by volume, and ranked second ...
.


Russian hacking investigations

CrowdStrike helped investigate the Democratic National Committee cyber attacks and alleged a connection to Russian intelligence services, but did not provide FBI access to the DNC servers. On March 20, 2017,
James Comey James Brien Comey Jr. (; born December 14, 1960) is an American lawyer who was the seventh director of the Federal Bureau of Investigation (FBI) from 2013 until his dismissal in May 2017. Comey was a registered Republican for most of his adul ...
testified before congress stating, "CrowdStrike,
Mandiant Mandiant is an American cybersecurity firm and a subsidiary of Google. It rose to prominence in February 2013 when it released a report directly implicating China in cyber espionage. In December 2013, Mandiant was acquired by FireEye for $1 b ...
, and ThreatConnect review dthe evidence of the hack and conclude with high certainty that it was the work of APT 28 and APT 29 who are known to be Russian intelligence services." In December 2016, CrowdStrike released a report stating that Russian government-affiliated group
Fancy Bear Fancy Bear (also known as APT28 (by Mandiant), Pawn Storm, Sofacy Group (by Kaspersky), Sednit, Tsar Team (by FireEye) and STRONTIUM (by Microsoft)) is a Russian cyber espionage group. Cybersecurity firm CrowdStrike has said with a medium leve ...
had hacked a Ukrainian artillery app. They concluded that Russia had used the hack to cause large losses to Ukrainian artillery units. The app (called ArtOS) is installed on tablet PCs and used for fire-control. CrowdStrike also found a hacked variation of POPR-D30 being distributed on Ukrainian military forums that utilized an X-Agent implant. The
International Institute for Strategic Studies The International Institute for Strategic Studies (IISS) is a British research institute or think tank in the area of international affairs. Since 1997, its headquarters have been Arundel House in London, England. The 2017 Global Go To Think ...
rejected CrowdStrike's assessment that claimed hacking caused losses to Ukrainian artillery units, saying that their data on Ukrainian D30 howitzer losses was misused in CrowdStrike's report. The Ukrainian Ministry of Defense also rejected the CrowdStrike report, stating that actual artillery losses were much smaller than what was reported by CrowdStrike and were not associated with Russian hacking. Cybersecurity firm SecureWorks discovered a list of email addresses targeted by Fancy Bear in phishing attacks. The list included the email address of Yaroslav Sherstyuk, the developer of ArtOS. Additional
Associated Press The Associated Press (AP) is an American non-profit news agency headquartered in New York City. Founded in 1846, it operates as a cooperative, unincorporated association. It produces news reports that are distributed to its members, U.S. newsp ...
research supports CrowdStrike's conclusions about Fancy Bear.
Radio Free Europe Radio Free Europe/Radio Liberty (RFE/RL) is a United States government funded organization that broadcasts and reports news, information, and analysis to countries in Eastern Europe, Central Asia, Caucasus, and the Middle East where it says tha ...
notes that the AP report "lends some credence to the original CrowdStrike report, showing that the app had, in fact, been targeted." In the
Trump–Ukraine scandal The "Trump–Ukraine scandal" refers to efforts by U.S. President Donald Trump to coerce Ukraine and other countries into providing damaging narratives about 2020 Democratic Party presidential candidate Joe Biden, and giving misinformati ...
, a transcript of a conversation between
Donald Trump Donald John Trump (born June 14, 1946) is an American politician, media personality, and businessman who served as the 45th president of the United States from 2017 to 2021. Trump graduated from the Wharton School of the University of P ...
, the former
president of the United States The president of the United States (POTUS) is the head of state and head of government of the United States of America. The president directs the executive branch of the federal government and is the commander-in-chief of the United St ...
, and
Volodymyr Zelensky Volodymyr Oleksandrovych Zelenskyy, ; russian: Владимир Александрович Зеленский, Vladimir Aleksandrovich Zelenskyy, (born 25 January 1978; also transliterated as Zelensky or Zelenskiy) is a Ukrainian politicia ...
, the
president of Ukraine The president of Ukraine ( uk, Президент України, Prezydent Ukrainy) is the head of state of Ukraine. The president represents the nation in international relations, administers the foreign political activity of the state, cond ...
, had Trump asking Zelensky to look into CrowdStrike.


Recognition

* 2021 AWS Global Public Sector Partner Award for best cybersecurity solution * 2021 Canada AWS Partner Award as the ISV Partner of the Year * 2021 Ranked #1 for Modern Endpoint Security 2020 Market Shares in IDC’s Worldwide Corporate Endpoint Security Market Shares, 2020 Report


See also

*
Timeline of Russian interference in the 2016 United States elections This is a timeline of events related to alleged Russian interference in the 2016 United States elections. It includes events described in investigations into suspected inappropriate links between associates of Donald Trump and Russian official ...
* Timeline of investigations into Trump and Russia (January–June 2017)


References


External links

* * {{NASDAQ-100 Companies based in Austin, Texas American companies established in 2011 Technology companies established in 2011 Computer security companies Security companies of the United States 2011 establishments in California Organizations associated with Russian interference in the 2016 United States elections 2019 initial public offerings Companies listed on the Nasdaq Internet technology companies of the United States Trump–Ukraine scandal